#dvn Meeting
Meeting started by pdurbin at 19:01:38 UTC
(full logs).
Meeting summary
- intro (pdurbin, 19:01:49)
- summarizing how authentication works in a Dataverse Network today (pdurbin, 19:05:40)
- reaching a common understanding of what Shibboleth is (pdurbin, 19:11:03)
- http://shibboleth.net/about/basic.html
has more about the main "actors" in Shibboleth. I want to focus on
the Identity Provider (IdP) vs. the Service Provider (SP) (pdurbin,
19:11:35)
- https://github.com/dvn/shibpoc
contains all the configuration for how I set up dvn-vm2 (pdurbin,
19:17:23)
- https://dvn-vm2.hmdc.harvard.edu/secure/
example show protecting files from download (pdurbin,
19:28:34)
- roughing out a plan for how to integrate Shibboleth into the DVN (pdurbin, 19:28:57)
- option 1: fronting Glassfish with Apache
(pdurbin,
20:02:55)
- option 2: OpenAM (pdurbin,
20:03:50)
- option 3: write our own Service Provider (SP)
with OpenSAML (pdurbin,
20:09:24)
- AGREED: use
testshib.org first, then Harvard's test IdP when available
(pdurbin,
20:22:22)
- ACTION: pdurbin to
add basic, non-shib auth to iqss-javaee-template and later OpenAM
for testing with testshib.org (pdurbin,
20:24:32)
- discussing implications of Shibboleth integration (pdurbin, 20:26:21)
- IDEA: make sure we can
support multiple IdPs (pdurbin,
20:27:07)
- shib-enabled DVNs will probably still need
local login as well (pdurbin,
20:27:43)
- http://irclog.iq.harvard.edu/dvn/2013-02-13#i_855
discussion of local login and other implications of enabling
Shibboleth in a DVN (pdurbin,
20:29:03)
Meeting ended at 20:33:16 UTC
(full logs).
Action items
- pdurbin to add basic, non-shib auth to iqss-javaee-template and later OpenAM for testing with testshib.org
Action items, by person
- pdurbin
- pdurbin to add basic, non-shib auth to iqss-javaee-template and later OpenAM for testing with testshib.org
People present (lines said)
- pdurbin (159)
- marlena (49)
- sbmarks (13)
- bobtreacy (7)
- gdurand (6)
- zodbot (2)
Generated by MeetBot 0.1.4.